Securing Software at AI Speed with Varun Badhwar

Securing Software at AI Speed with Varun Badhwar

The biggest security threat isn’t in the cloud, it’s hidden in the code you trust the most.

In this episode, Ron sits down with Varun Badhwar, Co-Founder & CEO of Endor Labs, who shares why research shows that nearly 80–90% of application code comes from open source and third-party libraries, not your own developers. Varun discusses the unseen risks of AI-generated software, how attackers can now weaponize vulnerabilities in hours, and why precision in security matters more than ever. He also reveals how AI can be both the ultimate accelerator and the ultimate weakness in modern development.

Impactful Moments: 00:00 - Introduction 02:00 - Varun’s journey from RedLock to Endor Labs 04:00 - Why the software supply chain is broken 07:00 - AI coding assistants and insecure code risks 10:00 - The NPM self-replicating worm discovery 13:00 - Simple controls to enforce Zero Trust in code 16:00 - Pairing AI with security to prevent slop 19:00 - AI-powered security code reviews explained 22:00 - Why 88% of code goes unused 26:00 - Developer efficiency as the new security metric 29:00 - The next wave of AI-driven software threats

Links: Connect with our Endor on LinkedIn: https://www.linkedin.com/in/vbadhwar/

Check out our upcoming events: https://www.hackervalley.com/livestreams

Join our creative mastermind and stand out as a cybersecurity professional: https://www.patreon.com/hackervalleystudio

Love Hacker Valley Studio? Pick up some swag: https://store.hackervalley.com

Continue the conversation by joining our Discord: https://hackervalley.com/discord

Become a sponsor of the show to amplify your brand: https://hackervalley.com/work-with-us/

Avsnitt(404)

Episode 60 - Clearing the Fog of Cyber War with Dr. Chase Cunningham

Episode 60 - Clearing the Fog of Cyber War with Dr. Chase Cunningham

Dr. Chase Cunningham is the author of "Cyber Warfare – Truth, Tactics, and Strategies" and an expert in Zero Trust security. We talk about his book, all of the work and research that went into the book, and his personal story with the Zero Trust model.   Dr. Cunningham's Twitter: @CynjaChaseC Dr. Cunningham's LinkedIn: https://www.linkedin.com/in/dr-chase-cunningham-54b26243/ Dr. Cunningham's Book: https://www.packtpub.com/security/cyber-warfare-truth-tactics-and-strategies

27 Apr 202018min

Episode 59 - Dawn of the Intelligence Executive with Mike Anderson

Episode 59 - Dawn of the Intelligence Executive with Mike Anderson

In this episode, we have the awesome Mike Anderson in the studio. He is the VP of Partnerships at Intel 471. We talk about threat intelligence and the future of intelligence leadership in the commercial sector.   Mike's LinkedIn: https://www.linkedin.com/in/michaelanderson2009/ The Intel 471 Website: https://intel471.com/

22 Apr 202018min

Episode 58 - Having Too Much Fun with Graham Cluley

Episode 58 - Having Too Much Fun with Graham Cluley

This was an unbelievably fun podcast to record. If you are a fan of Graham Cluley, you will absolutely love this chat. We talk about his origin story, what it is like having an award-winning podcast, and a very cool story about chess. Enjoy!   Graham's LinkedIn: https://www.linkedin.com/in/grahamcluley/ Twitter:@gcluley Website: https://www.grahamcluley.com/ Graham's Podcast: https://www.smashingsecurity.com/

20 Apr 202035min

Episode 57 - Underrepresented III

Episode 57 - Underrepresented III

We are back with another episode of Underrepresented! This is our co-produced series with Marco and Sean from ITSP Magazine. Our guests for this episode: Ashley Tolbert, representing Women in Security and Privacy (WISP) Kim Crawley, representing the neuro-diverse workforce In this episode we cover a few types of diversity and the importance of tribes.

18 Apr 202048min

Episode 56 - Digging into Deepfakes with Alyssa Miller

Episode 56 - Digging into Deepfakes with Alyssa Miller

In this conversation, we sit down with security veteran Alyssa Miller to talk about her recent deepfake research. We also discuss stoking the fire of curiosity to keep things fresh in cybersecurity. Alyssa's Twitter: @AlyssaM_InfoSec Alyssa's LinkedIn: https://www.linkedin.com/in/alyssam-infosec/ Alyssa's Website: https://alyssasec.com/

15 Apr 202029min

Episode 55 - A Tech Origin Story with Sam Crowther

Episode 55 - A Tech Origin Story with Sam Crowther

If you love interesting origin stories, look no further than this episode with Sam Crowther. He is the founder and CEO of Kasada. We discuss his origin and the beginnings of his company.   Sam's Twitter: @InfoSecSam Sam's LinkedIn: linkedin.com/in/samjcrowther Kasada's Website: https://www.kasada.io/

13 Apr 202013min

Episode 54 - Hiring Leaders and Finding Talent with Alex Maestretti

Episode 54 - Hiring Leaders and Finding Talent with Alex Maestretti

In this episode we sit down to chat with Alex Maestretti, CISO of Remitly. In this conversation, we explore finding talent and the unique challenge of hiring managers. Chris also shares his unique relationship to Alex. Alex's LinkedIn: linkedin.com/in/maestretti Alex's Twitter Handle: @maestretti Remitly's Website: https://www.remitly.com/us/en

9 Apr 202016min

Episode 53 - In the Depths of Deception with Jenny Radcliffe

Episode 53 - In the Depths of Deception with Jenny Radcliffe

Psychology is a major pillar of Social Engineering 🧠. In this episode, we brought in a true expert, Jenny Radcliffe - A burgular for hire, a professional con-artist, and an expert in Non-verbal communications. This episode had Chris and Ron on the edge of their seats. To learn more about Jenny Radcliffe: @Jenny_Radcliffe https://humanfactorsecurity.co.uk/

6 Apr 202039min

Populärt inom Utbildning

rss-bara-en-till-om-missbruk-medberoende-2
historiepodden-se
det-skaver
alska-oss
nu-blir-det-historia
johannes-hansen-podcast
harrisons-dramatiska-historia
sektledare
allt-du-velat-veta
not-fanny-anymore
rss-sjalsligt-avkladd
roda-vita-rosen
polisutbildningspodden
sa-in-i-sjalen
vi-gar-till-historien
rss-npf-podden
rss-om-vi-ska-vara-arliga
rss-relationsrevolutionen
sektpodden
rss-basta-livet